STIGQter STIGQter: STIG Summary: APACHE 2.2 Site for UNIX Security Technical Implementation Guide Version: 1 Release: 11 Benchmark Date: 25 Jan 2019:

The number of allowed simultaneous requests must be set.

DISA Rule

SV-33018r1_rule

Vulnerability Number

V-2240

Group Title

WG110

Rule Version

WG110 A22

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Edit the httpd.conf file and set the MaxKeepAliveRequests directive to 100 or greater.

Check Contents

To view the MaxKeepAliveRequests value, enter the following command:

grep "MaxKeepAliveRequests" /usr/local/apache2/conf/httpd.conf

If the returned value of MaxKeepAliveRequests is not set to 100 or greater, this is a finding.

Vulnerability Number

V-2240

Documentable

False

Rule Version

WG110 A22

Severity Override Guidance

To view the MaxKeepAliveRequests value, enter the following command:

grep "MaxKeepAliveRequests" /usr/local/apache2/conf/httpd.conf

If the returned value of MaxKeepAliveRequests is not set to 100 or greater, this is a finding.

Check Content Reference

M

Responsibility

Web Administrator

Target Key

161

Comments